CVE-2024-52541

HIGHCVSS 8.2/10EPSS 0.16%

Last modified

CVE-2024-52541 is a high-severity vulnerability rated 8.2/10 on the CVSS scale. Dell Client Platform BIOS contains a Weak Authentication vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of Privileges.. EPSS estimates a 0.16% chance of exploitation in the next 30 days.

Description

Dell Client Platform BIOS contains a Weak Authentication vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of Privileges.

Metrics

CVSS 3.1
8.2/10

CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H

EPSS Probability
0.16%

5.1th percentile

Probability of exploitation in the next 30 days. Learn more

Weakness Enumeration

Affected Software

VendorProductVersions
DellAlienware M15 R6 Firmware< 1.34.0
DellAlienware M15 R7 Firmware< 1.28.0
DellAlienware M16 R1 Firmware< 1.21.0
DellAlienware M16 R2 Firmware< 1.8.0
DellAlienware M18 R1 Firmware< 1.21.0
DellLatitude 5300 2-In-1 Firmware< 1.33.1
DellLatitude 5310 Firmware< 1.26.1
DellLatitude 5310 2-In-1 Firmware< 1.26.1
DellLatitude 5320 Firmware< 1.40.0
DellLatitude 5330 Firmware< 1.25.0
DellLatitude 5340 Firmware< 1.16.0
DellLatitude 5350 Firmware< 1.8.0
DellLatitude 5400 Firmware< 1.35.0
DellLatitude 5401 Firmware< 1.36.0
DellLatitude 5410 Firmware< 1.33.0
DellLatitude 5411 Firmware< 1.34.0
DellLatitude 5420 Firmware< 1.41.0
DellLatitude 5420 Rugged Firmware< 1.35.0
DellLatitude 5421 Firmware< 1.35.0
DellLatitude 5424 Rugged Firmware< 1.35.0
DellLatitude 5430 Firmware< 1.25.0
DellLatitude 5430 Rugged Laptop Firmware< 1.31.2
DellLatitude 5431 Firmware< 1.25.0
DellLatitude 5440 Firmware< 1.18.1
DellLatitude 5450 Firmware< 1.8.0
DellLatitude 5480 Firmware< 1.39.0
DellLatitude 5488 Firmware< 1.39.0
DellLatitude 5490 Firmware< 1.38.0
DellLatitude 5491 Firmware< 1.36.0
DellLatitude 5495 Firmware< 1.17.0
DellLatitude 5500 Firmware< 1.35.0
DellLatitude 5501 Firmware< 1.36.0
DellLatitude 5510 Firmware< 1.33.0
DellLatitude 5511 Firmware< 1.34.0
DellLatitude 5520 Firmware< 1.40.0
DellLatitude 5521 Firmware< 1.34.0
DellLatitude 5530 Firmware< 1.25.0
DellLatitude 5531 Firmware< 1.26.0
DellLatitude 5540 Firmware< 1.16.0
DellLatitude 5550 Firmware< 1.8.0
DellLatitude 5580 Firmware< 1.39.0
DellLatitude 5590 Firmware< 1.38.0
DellLatitude 5591 Firmware< 1.36.0
DellLatitude 7030 Rugged Extreme Firmware< 1.10.0
DellLatitude 7200 2-In-1 Firmware< 1.33.1
DellAlienware M18 R2 Firmware< 1.9.0
DellAlienware X14 R2 Firmware< 1.17.0
DellAlienware X16 R1 Firmware< 1.17.0
DellAlienware X16 R2 Firmware< 1.7.0
DellChengming 3900 Firmware< 1.26.0

Showing 50 of 392 affected configurations. See NVD for the full list.

References

Timeline

Published
Last Modified
Status
Analyzed

Frequently Asked Questions

What is CVE-2024-52541?
Dell Client Platform BIOS contains a Weak Authentication vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of Privileges.
How severe is CVE-2024-52541?
CVE-2024-52541 has a CVSS score of 8.2/10 (HIGH severity). The EPSS model estimates a 0.16% probability of exploitation in the next 30 days.
How do I fix CVE-2024-52541?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2024-52541?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST